MEDIUM n8n: n8n CVE-2026-65594 — n8n: Member-Level Users Can Execute Other Users' MCP Server Trigger Workflows vi
Why it matters
n8n: Member-Level Users Can Execute Other Users' MCP Server Trigger Workflows via Missing OAuth Authorization Check
Fix it — 2 steps
- Upgrade to 2.30.1 or later. This is the only complete fix.
- Until patched, take it off the internet: `sudo ufw deny 5678` or bind it to localhost.
Verify it’s fixed
curl -s http://YOUR_SERVER_IP:5678/rest/settings | grep -o 'n8n@[0-9.]*' # must be >= 2.30.1
References
Not sure if your stack is exposed?
Run the free check — 30 seconds, safe read-only probes.
Scan your stack